Portage 'etc-update' Local Information Disclosure Vulnerability
BID:26864
Info
Portage 'etc-update' Local Information Disclosure Vulnerability
| Bugtraq ID: | 26864 |
| Class: | Design Error |
| CVE: |
CVE-2007-6249 |
| Remote: | No |
| Local: | Yes |
| Published: | Dec 13 2007 12:00AM |
| Updated: | Dec 14 2007 06:12PM |
| Credit: | Mike Frysinger is credited with the discovery of this vulnerability. |
| Vulnerable: |
Gentoo sys-apps/portage 2.1.3.10 Gentoo Linux |
| Not Vulnerable: |
Gentoo sys-apps/portage 2.1.3.11 |
Discussion
Portage 'etc-update' Local Information Disclosure Vulnerability
Portage is prone to a local information-disclosure vulnerability because it creates temporary files with an unsuitable 'umask'. As a result, the files are world-readable.
An attacker can exploit this issue to access sensitive information that may lead to further attacks.
Versions prior to Portage 2.1.3.11 are vulnerable to this issue.
Portage is prone to a local information-disclosure vulnerability because it creates temporary files with an unsuitable 'umask'. As a result, the files are world-readable.
An attacker can exploit this issue to access sensitive information that may lead to further attacks.
Versions prior to Portage 2.1.3.11 are vulnerable to this issue.
Exploit / POC
Portage 'etc-update' Local Information Disclosure Vulnerability
Attackers can use readily available system commands to exploit this issue.
Attackers can use readily available system commands to exploit this issue.
Solution / Fix
Portage 'etc-update' Local Information Disclosure Vulnerability
Solution:
Gentoo has released an advisory and Portage 2.1.3.11 to address this issue. Please see the references for more information.
Solution:
Gentoo has released an advisory and Portage 2.1.3.11 to address this issue. Please see the references for more information.
References
Portage 'etc-update' Local Information Disclosure Vulnerability
References:
References:
- CVE-2015-7513 Kernel: kvm: divide by zero issue leads to DoS (Prasad J Pandit)